Commit Graph

  • 59ae6f8d39 Depreciate this project master Jia Zhang 2023-02-07 11:04:55 +08:00
  • d218a980af shim: fix CVE-2022-28737 Archana Polampalli 2022-12-28 06:33:31 +00:00
  • d5ce74c955 meta-integrity/conf/layer.conf: rename BBFILE_COLLECTIONS Yi Zhao 2022-12-26 15:16:03 +08:00
  • 37874f8a19 meta-integrity: Fix failure to find linux-yocto-integrity.inc He Zhe 2022-12-08 15:36:39 +08:00
  • 215174b60c linux-yocto*: fix require of include file Mikko Rapeli 2022-12-09 14:05:41 +00:00
  • 551802f96f grub-efi: refresh patches for grub with fix of CVE-2022-28736 Xiangyu Chen 2022-12-27 15:35:51 +08:00
  • 6838a54f13 Sign initramfs image Peter Hatina 2022-10-13 21:19:31 +02:00
  • 0198c6f482 meta-encrypted-storage: check luks DISTRO_FEATURES Mingli Yu 2022-11-29 14:18:20 +08:00
  • 70441485bc meta-integrity: check ima DISTRO_FEATURES Mingli Yu 2022-11-29 13:19:09 +08:00
  • 5a8d5924a2 meta-efi-secure-boot: check efi-secure-boot DISTRO_FEATURES Mingli Yu 2022-11-29 13:05:33 +08:00
  • f0b4bfd65d meta-tpm2: check the tpm2 DISTRO_FEATURES Mingli Yu 2022-11-29 12:04:02 +08:00
  • 39a46d6b15 meta-secure-core: update the README Mingli Yu 2022-11-29 11:49:11 +08:00
  • fa438247c3 grub-efi: remove build host references from modinfo.sh Yi Zhao 2022-10-12 11:45:02 +08:00
  • 225076287f layer.conf: add langdale to LAYERSERIES_COMPAT Yi Zhao 2022-10-03 15:19:52 +08:00
  • 1a74be5b36 cryptfs-tpm2: fix ld warnings with binutils 2.39 Kai Kang 2022-08-23 20:22:11 -07:00
  • def57bd5e0 ima: Remove disabling CONFIG_IMA_TEMPLATE He Zhe 2022-08-04 15:05:06 +08:00
  • d0a0285971 kernel-initramfs: fix typo for ALTERNATIVE Yi Zhao 2022-06-14 16:43:53 +08:00
  • 2ccf4aa4e3 meta-secure-core: support kirkstone Jia Zhang 2022-06-05 14:51:31 +08:00
  • 5526d1d647 Set weak default value for VENDOR_UUID honister Peter Hatina 2022-05-30 13:20:20 +02:00
  • b4522579c0 (conditionally) add 'tpm' to list of grub built-in modules corey cothrum 2022-04-11 10:05:48 -05:00
  • bbd671ca72 meta-secure-core: Handle bitbake variable renaming Yi Zhao 2022-04-07 11:37:23 +08:00
  • 56731a69db recipes: Update LICENSE variable to use SPDX license identifiers Yi Zhao 2022-04-07 11:21:23 +08:00
  • 5d274050c7 grub-efi: split grub serure builtin option from GRUB_BUILDIN Hongxu Jia 2022-03-10 18:12:32 +08:00
  • c2029ebb5a mtree: update LICENSE variant Changqing Li 2022-02-18 16:13:05 +08:00
  • 6dd9a49284 Updated the URI for Jeremy Kerr's sbsigntools sumo Dimitri Bouras 2022-02-08 15:34:02 -08:00
  • c9d359ea33 Update git source URL because of 404 error. tomita 2021-11-07 23:48:10 +09:00
  • 22ed4822a8 initrdscripts-secure-core: remove /sys and /proc from package tomita 2021-11-07 23:47:02 +09:00
  • 4f0cadf438 added newline richard 2020-06-11 14:57:43 +00:00
  • ca4ead2536 changed init file from the secure-core-image-initramfs to not load an unencrypted rootfs when using full disk encryption. richard 2020-06-11 14:52:22 +00:00
  • 2bd48852e2 meta-secure-core: fix wrong operator combination Yi Zhao 2021-11-18 10:15:38 +08:00
  • fea6a37625 recipes: update SRC_URI branch and protocols Yi Zhao 2021-11-14 00:42:35 +08:00
  • c14c00f483 rpm-native: disable audit plugin Changqing Li 2021-10-22 14:02:01 +08:00
  • 4ddcbda60d cryptfs-tpm2: upgrade to latest git rev Yi Zhao 2021-10-28 15:05:52 +08:00
  • 8226df83a6 tpm2-tools: upgrade 4.1.3 -> 4.3.2 Yi Zhao 2021-10-28 14:48:57 +08:00
  • 1d1bd5934b tpm2-abrmd: upgrade 2.3.2 -> 2.3.3 Yi Zhao 2021-10-28 14:37:42 +08:00
  • d3a025a3d5 tpm2-tss: backport fixes for openssl 3.0 Yi Zhao 2021-10-29 11:32:56 +08:00
  • 59a7c40fe7 tpm2-tss: upgrade 2.3.3 -> 2.4.6 Yi Zhao 2021-10-28 14:26:48 +08:00
  • 5fcb2f0e67 grub-efi: Remove $cmdpath from configuration for for grub-mkimage Peter Hatina 2021-10-27 09:30:36 +02:00
  • b3ad26ab0c grub-efi: Remove $cmdpath from configuration for for grub-mkimage gatesgarth Peter Hatina 2021-10-27 09:30:36 +02:00
  • 3fa3fc6dcb efitools: fix openssl.cnf path for openssl 3.0 Yi Zhao 2021-10-20 16:57:23 +08:00
  • 4caca5b780 tpm2-tools: fix build with openssl 3.0 Yi Zhao 2021-10-20 15:19:32 +08:00
  • b308dc89ac sbsigntool: fix openssl-3.0 issue involving ASN1_ITEM TYPE_it Yi Zhao 2021-10-21 12:45:41 +08:00
  • 4dc1be23d9 sbsigntool: fix build with openssl 3.0 Yi Zhao 2021-10-20 15:37:41 +08:00
  • cb56933902 sbsigntool: fix commented-out override syntax Yi Zhao 2021-08-26 17:12:53 +08:00
  • 5befefe199 fix sbsigningtool SRC_URI thud Jonathan Marler 2021-08-23 14:54:29 -06:00
  • 5a3129c901 trousers: fix init script with multi-tpm systems Mathieu Dubois-Briand 2021-08-20 15:43:26 +02:00
  • b988150cf3 cryptfs-tpm2: fix encrypt_secret.py for python3 Yi Zhao 2021-08-20 17:42:36 +08:00
  • 62b388cf72 libsign: fix LDFLAGS expansion Yi Zhao 2021-08-20 12:46:09 +08:00
  • dad89db9b9 libsign: fix build reproducibility issue Yi Zhao 2021-08-20 12:32:38 +08:00
  • e004d37650 cryptfs-tpm2: fix LDFLAGS expansion Yi Zhao 2021-08-20 11:28:38 +08:00
  • 66a1d0582c README: fix typos Yi Zhao 2021-08-19 15:02:43 +08:00
  • 438190a471 layer.conf: add back append to BB_HASHBASE_WHITELIST Chen Qi 2021-08-16 17:25:56 +08:00
  • 626750b839 README: update Yi Zhao 2021-08-09 17:35:36 +08:00
  • 0e475df858 secure-core-image: pass encrypted password rather than plaintext password to usermod Yi Zhao 2021-08-09 17:30:50 +08:00
  • 9f03a89db8 layer.conf: add honister to LAYERSERIES_COMPAT Yi Zhao 2021-08-04 11:02:54 +08:00
  • 4042043742 meta-secure-core: Convert to new override syntax Yi Zhao 2021-08-04 10:52:40 +08:00
  • 6768abc7d4 cryptfs-tpm2: fix build reproducibility issue Yi Zhao 2021-08-04 10:46:28 +08:00
  • b84dc32e1d shim_git: fix the do_fetch warning Mingli Yu 2021-07-27 16:27:50 +08:00
  • c38e155c36 sbsigntool: update PV Yi Zhao 2021-06-22 13:38:33 +08:00
  • 31502fb8f2 sbsigntool: fix compile error when enable DEBUG_BUILD Yi Zhao 2021-06-22 11:44:12 +08:00
  • 551137d4eb sbsigntool: Fix for target build Robert Yang 2021-06-16 20:58:49 -07:00
  • 0e8603b1ea tpm2-tools: fix CVE-2021-3565 Yi Zhao 2021-07-07 11:23:38 +08:00
  • ba04fbba71 create-user-key-store.sh: use grub2-mkpasswd-pbkdf2 rather than grub-mkpasswd-pbkdf2 on RHEL/CentOS/Fedora Yi Zhao 2021-06-11 10:43:20 +08:00
  • e2ebd50f0b linux-yocto-efi-secure-boot.inc: fix rerun failure Kai Kang 2019-12-03 16:50:11 +08:00
  • fa43d5885d remove unused check jbouchard 2021-05-04 10:56:49 -04:00
  • 1c807f94af typo in chownboot jbouchard 2021-05-04 09:19:07 -04:00
  • d29aead19e check for signature before copy jbouchard 2021-05-04 07:55:45 -04:00
  • 65915f2d82 prevent contamining the cache with embeded cfg jbouchard 2021-04-30 09:14:56 -04:00
  • 961d7f3e43 properly handle the GRUB_VERIFY file jbouchard 2021-04-30 11:27:34 -04:00
  • e05617c768 allow to use the wic plugin jbouchard 2021-04-30 11:20:56 -04:00
  • b9f183a416 prevent contamining the cache with embeded cfg jbouchard 2021-04-30 09:14:56 -04:00
  • 6cbe3df2a2 layer.conf: add hardknott to LAYERSERIES_COMPAT Yi Zhao 2021-04-20 16:56:19 +08:00
  • bc84821aa4 grub: disable inside lockdown and shim_lock verifiers Yi Zhao 2021-04-07 13:27:01 +08:00
  • 9880c3ab33 Revert "user-key-store.bbclass: Kill gpg agent daemon after gpg sign" Liwei Song 2020-05-26 04:38:38 +00:00
  • f6963bf84b linux-yocto-efi-secure-boot.inc: fix rerun failure Kai Kang 2019-12-03 16:50:11 +08:00
  • b8040ed6cc meta-signing-key user-key-store.bbclass: don't req tools from efi-secure-boot Mark Hatle 2017-09-04 21:47:28 -05:00
  • 14c2074cf5 Revert "grub-efi: refresh patches for grub 2.06" Alexandru Avadanii 2021-04-07 15:44:45 +02:00
  • 596c6c76ae grub-efi: enable secure-boot support only for target builds Ovidiu Panait 2021-03-31 11:47:07 +03:00
  • f7ae553e6c grub: Drop useless insmod verify from cfg Alexandru Avadanii 2021-03-29 09:39:42 +02:00
  • ab13b08e43 kernel-initramfs: Fix leftover p7b reference Alexandru Avadanii 2021-03-25 16:56:25 +01:00
  • 4e1cc676dc grub-efi: refresh patches for grub 2.06 Yi Zhao 2021-03-23 15:20:49 +08:00
  • ee0d07240e grub-efi: update the bbapepnd file name Chen Qi 2021-03-21 19:21:40 -07:00
  • daee77e8d5 sbsigntool: fix compile error when enable DEBUG_BUILD Yi Zhao 2021-03-23 03:15:49 +00:00
  • f341b8653c sbsigntool: specify TMPDIR Joe Slater 2018-05-25 13:37:24 -07:00
  • a7d57f04b8 sbsigntool: Fix compilation when gnu-efi is missing and re-add patches Ilias Apalodimas 2021-03-10 16:03:50 +02:00
  • 477e4a812b meta-tpm2/conf/layer.conf: remove meta-python2 from LAYERDEPENDS Yi Zhao 2021-03-03 13:55:56 +08:00
  • bb0597dddb python-beautifulsoup4: remove recipe Yi Zhao 2021-03-03 13:48:07 +08:00
  • 1eeb4a31e3 tpm2simulator-native: remove recipe Yi Zhao 2021-03-03 13:25:55 +08:00
  • 1397fdd78f shim: update github address in SRC_URI Corey Cothrum 2021-03-02 21:11:19 +00:00
  • fa5550d97d sbsigntool: Update to latest and change repos Ilias Apalodimas 2021-02-28 16:21:49 +02:00
  • 6009b4d960 mtree: compat glibc 2.33 Hongxu Jia 2021-02-07 18:33:33 -08:00
  • 032e3b7740 tpm2simulator-native: fix native inheritance order Yi Zhao 2021-02-04 14:10:46 +08:00
  • 3704b99169 libsign: fix dependency loop error Changqing Li 2021-02-04 17:29:23 +08:00
  • 64097c52a0 Grub: Verify buffiles, e.g. fonts and images Jussi Keranen 2021-02-02 10:18:59 +02:00
  • d72746bfa7 Grub: Parameterize prefix dir Jussi Keranen 2021-01-21 17:03:36 +02:00
  • d05fc08f90 meta-efi-secure-boot/systemd: switch to meson build Yi Zhao 2021-01-18 16:48:21 +08:00
  • 2d1fb96206 grub: fix the file not found error when sysmlink filesize is 60 Yi Zhao 2021-01-08 09:01:29 +08:00
  • f1447e3896 Typo fix: Don't enforce to use RPM jussike 2021-01-14 11:31:26 +02:00
  • 50a847007d conf/layer.conf: Add gatesgarth to LAYERSERIES_COMPAT Bartłomiej Burdukiewicz 2020-11-06 14:10:55 +01:00
  • ca1c4bc784 user-key-store.bbclass: exclude ${GPG_PATH} from pseudo database Yi Zhao 2020-10-21 09:46:29 +08:00